Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: [Full-disclosure] Testing DidTheyReadIt.com |
|---|---|
| Date: | Sun, 30 Sep 2007 23:19:20 +1300 |
Juha-Matti Laurio to Thierry Zoller: [un-top-posted]
Just a sample test of how many of you read this email. Let's see how good it performs for mailinglists and what comes out.Your headers etc. doesn't state that this service is in use.
Maybe not _directly_, but comparing Received: headers in other Email Thierry has sent to Full-Disclosure from his @Zoller.lu address, you quickly see that hyperion.vo.lu is usually (??) the machine that injects such messages into the mail chain, whereas "his" test message was injected by colibri.e-mail-servers.com Aside from being totally useless "against" those who use text-only MUAs, this kind of service is generally useless because increasingly, even vendors like MS realize that user privacy is actually somewhat important and increasingly make NOT retrieving remote images (and other content) in "rich text" Emails the default, rather than just providing an option to turn off such attrocities should the user be aware enough to go looking for such an option... This is an example of a service that, in general, should not work, and in future will be increasingly more useless, I think. In the meantime, all (???) those using it should be asking what kind of data leakage they are exposing themselves to, through possible message content scanning and sender/receiver address usage patterns, among others. Regards, Nick FitzGerald _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: [Full-disclosure] Firefox 2.0.0.7 has a very serious calculation bug, James Matthews |
|---|---|
| Next by Date: | Re: [Full-disclosure] Testing DidTheyReadIt.com, gjgowey |
| Previous by Thread: | Re: [Full-disclosure] Testing DidTheyReadIt.com, Fabrizio |
| Next by Thread: | Re: [Full-disclosure] Testing DidTheyReadIt.com, gjgowey |
| Indexes: | [Date] [Thread] [Top] [All Lists] |